Welcome!

News Feed Item

Appian Achieves Several New Audit Reports Across Global Footprint

Appian Receives SOC 2 Type 2, SOC 1 Type 2, and ISAE 3402 Audit Reports to Bolster Existing Accreditations

RESTON, VA -- (Marketwired) -- 08/13/14 -- Appian, the market leader in modern business process management (BPM) and Case Management software, today announced that the Appian Cloud has received a Service Organization Controls (SOC) 2 Type 2 audit report. In addition, Appian has completed new audits for SOC 1 Type 2 and International Standard on Assurance Engagements (ISAE) 3402. These audits compliment Appian Cloud's existing security certifications and its control architecture has already helped clients meet both industry specific and geographic specific regulatory requirements, including PCI DSS, National Institute of Standards and Technology (NIST) 800-53 moderate controls, FDA 21 CFR Part 11, FISMA Moderate Authority to Operate (ATO), European Union Data Privacy and Australian Privacy Act.

Appian Cloud is recognized as the leading BPM Platform as a Service (PaaS) for the delivery of production applications. Appian Cloud has been given a "Strong Positive" rating (the highest rating in the report methodology) in the most recent Gartner, Inc. "MarketScope for Business Process Management Platform as a Service" report (Gartner, Inc. "MarketScope for Business Process Management Platform as a Service," by M. Cantara, et al, November 15, 2013).

Hundreds of global organizations across financial services, insurance, pharmaceuticals, government, retail and other industries use Appian Cloud in full production to rapidly deliver transformational business applications. Appian's Work Platform combination of enterprise data navigation, process management, native mobility and social collaboration accelerates smarter business decisions and actions, improves operational efficiency and optimizes the customer experience. Unlike typical PaaS/SaaS providers, Appian customer deployments are fully portable between Appian Cloud and on-premise Appian environments, reducing the perceived risk of cloud computing even further. Appian Cloud also delivers a 99.95 percent SLA.

Appian Cloud's updated SOC 2 Type 2 audit was prepared taking into consideration the attestation standards established by the American Institute of Certified Public Accountants (the "AICPA"). The SOC 2 report provides a detailed review, by an independent audit firm, of Appian Cloud's security, availability, and confidentiality controls. SOC 2 reports focus on controls at a service organization relevant to the following principles:

  • Security: The system is protected against unauthorized access (both physical and logical)
  • Availability: The system is available for operation and use as committed or agreed
  • Processing Integrity: System processing is complete, accurate, timely, and authorized
  • Confidentiality: Information designated as confidential is protected as committed or agreed
  • Privacy: Personal information is collected, used, retained, disclosed, and destroyed in conformity with the commitments in the entity's privacy notice and with criteria set forth in generally accepted privacy principles issued by the AICPA and CICA

Appian's new ISAE 3402 audit report is similar to Appian's SOC 1 Type 2 audit, but utilizes an international standard. ISAE 3402 was developed to provide an international assurance standard for allowing public accountants to issue a report for use by user organizations and their auditors (user auditors) on the controls at a service organization that are likely to impact or be a part of the user organization's system of internal control over financial reporting.

"Appian Cloud provides enterprise-grade security and compliance that meets the demanding requirements of a broad range of regulated and unregulated industries," said Myles Weber, Vice President of Cloud and Community Services at Appian. "Our latest audits give assurance to our customers that they can safely and rapidly drive business innovation with our platform."

Appian provides all the necessary components to rapidly deploy new process-based applications in the cloud via Platform as a Service. Users can easily design, execute, manage, and optimize key business applications through a simple web browser. Appian Cloud features attributes such as instant project start, state-of-the-art enabling technologies, continuous innovation, native mobile apps, personalized branding, simplified operations, support for corporate system integrations and localized hosting (USA, EU, APAC, South America).

About Appian
As the market leader in modern BPM software, Appian delivers a Work Platform that unites users with all their data, processes, and collaborations -- in one environment, on any mobile device, through a simple social interface. Appian's Business Process Management (BPM) Suite seamlessly integrates work automation with native mobile and social capabilities. Appian is available on-premise and in the cloud, with complete portability. More than 3.5 million users, from Fortune 100 companies to the mid-market and small businesses worldwide, trust Appian to power their critical business processes. For more information, visit www.appian.com.

For Information Contact:
Mike Ingrisano
Media Relations Manager
+1 703.434.3356
Email Contact

More Stories By Marketwired .

Copyright © 2009 Marketwired. All rights reserved. All the news releases provided by Marketwired are copyrighted. Any forms of copying other than an individual user's personal reference without express written permission is prohibited. Further distribution of these materials is strictly forbidden, including but not limited to, posting, emailing, faxing, archiving in a public database, redistributing via a computer network or in a printed form.

Latest Stories
It's easy to assume that your app will run on a fast and reliable network. The reality for your app's users, though, is often a slow, unreliable network with spotty coverage. What happens when the network doesn't work, or when the device is in airplane mode? You get unhappy, frustrated users. An offline-first app is an app that works, without error, when there is no network connection.
Data-as-a-Service is the complete package for the transformation of raw data into meaningful data assets and the delivery of those data assets. In her session at 18th Cloud Expo, Lakshmi Randall, an industry expert, analyst and strategist, will address: What is DaaS (Data-as-a-Service)? Challenges addressed by DaaS Vendors that are enabling DaaS Architecture options for DaaS
One of the bewildering things about DevOps is integrating the massive toolchain including the dozens of new tools that seem to crop up every year. Part of DevOps is Continuous Delivery and having a complex toolchain can add additional integration and setup to your developer environment. In his session at @DevOpsSummit at 18th Cloud Expo, Miko Matsumura, Chief Marketing Officer of Gradle Inc., will discuss which tools to use in a developer stack, how to provision the toolchain to minimize onboa...
SYS-CON Events announced today that Catchpoint Systems, Inc., a provider of innovative web and infrastructure monitoring solutions, has been named “Silver Sponsor” of SYS-CON's DevOps Summit at 18th Cloud Expo New York, which will take place June 7-9, 2016, at the Javits Center in New York City, NY. Catchpoint is a leading Digital Performance Analytics company that provides unparalleled insight into customer-critical services to help consistently deliver an amazing customer experience. Designed...
Companies can harness IoT and predictive analytics to sustain business continuity; predict and manage site performance during emergencies; minimize expensive reactive maintenance; and forecast equipment and maintenance budgets and expenditures. Providing cost-effective, uninterrupted service is challenging, particularly for organizations with geographically dispersed operations.
When building large, cloud-based applications that operate at a high scale, it’s important to maintain a high availability and resilience to failures. In order to do that, you must be tolerant of failures, even in light of failures in other areas of your application. “Fly two mistakes high” is an old adage in the radio control airplane hobby. It means, fly high enough so that if you make a mistake, you can continue flying with room to still make mistakes. In his session at 18th Cloud Expo, Lee...
DevOps is not just last year’s buzzword. Companies with DevOps practices are 2.5x more likely to exceed profitability, market share, and productivity goals. But how do you enable high performance? What can you do right now to start? Find out from DevOps experts including Gene Kim, co-author of "The Phoenix Project," and the Dynatrace Center of Excellence.
With the proliferation of both SQL and NoSQL databases, organizations can now target specific fit-for-purpose database tools for their different application needs regarding scalability, ease of use, ACID support, etc. Platform as a Service offerings make this even easier now, enabling developers to roll out their own database infrastructure in minutes with minimal management overhead. However, this same amount of flexibility also comes with the challenges of picking the right tool, on the right ...
SYS-CON Events announced today that Column Technologies will exhibit at SYS-CON's @DevOpsSummit at Cloud Expo, which will take place on June 7-9, 2016, at the Javits Center in New York City, NY. Established in 1998, Column Technologies is a global technology solutions provider with over 400 employees, headquartered in the United States with offices in Canada, India, and the United Kingdom. Column Technologies provides “Best of Breed” technology solutions that automate the key DevOps principal...
SYS-CON Events announced today that Interoute, owner-operator of one of Europe's largest networks and a global cloud services platform, has been named “Bronze Sponsor” of SYS-CON's 18th Cloud Expo, which will take place on June 7-9, 2015 at the Javits Center in New York, New York. Interoute is the owner-operator of one of Europe's largest networks and a global cloud services platform which encompasses 12 data centers, 14 virtual data centers and 31 colocation centers, with connections to 195 ad...
Join us at Cloud Expo | @ThingsExpo 2016 – June 7-9 at the Javits Center in New York City and November 1-3 at the Santa Clara Convention Center in Santa Clara, CA – and deliver your unique message in a way that is striking and unforgettable by taking advantage of SYS-CON's unmatched high-impact, result-driven event / media packages.
There will be new vendors providing applications, middleware, and connected devices to support the thriving IoT ecosystem. This essentially means that electronic device manufacturers will also be in the software business. Many will be new to building embedded software or robust software. This creates an increased importance on software quality, particularly within the Industrial Internet of Things where business-critical applications are becoming dependent on products controlled by software. Qua...
SYS-CON Events announced today that Commvault, a global leader in enterprise data protection and information management, has been named “Bronze Sponsor” of SYS-CON's 18th International Cloud Expo, which will take place on June 7–9, 2016, at the Javits Center in New York City, NY, and the 19th International Cloud Expo, which will take place on November 1–3, 2016, at the Santa Clara Convention Center in Santa Clara, CA. Commvault is a leading provider of data protection and information management...
As someone who has been dedicated to automation and Application Release Automation (ARA) technology for almost six years now, one of the most common questions I get asked regards Platform-as-a-Service (PaaS). Specifically, people want to know whether release automation is still needed when a PaaS is in place, and why. Isn't that what a PaaS provides? A solution to the deployment and runtime challenges of an application? Why would anyone using a PaaS then need an automation engine with workflow ...
With an estimated 50 billion devices connected to the Internet by 2020, several industries will begin to expand their capabilities for retaining end point data at the edge to better utilize the range of data types and sheer volume of M2M data generated by the Internet of Things. In his session at @ThingsExpo, Don DeLoach, CEO and President of Infobright, will discuss the infrastructures businesses will need to implement to handle this explosion of data by providing specific use cases for filte...